Iron gForce Lite Security & Risk Analysis

wordpress.org/plugins/iron-gforce-lite

Integrate Greenhouse ATS into WordPress, streamlining recruitment. Display job listings from your Greenhouse job board.

10 active installs v1.4 PHP + WP 3.0+ Updated Jun 15, 2024
atsgreenhouseintegrationjob-boardrecruitment
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Iron gForce Lite Safe to Use in 2026?

Generally Safe

Score 92/100

Iron gForce Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "iron-gforce-lite" plugin v1.4 exhibits a strong security posture based on the provided static analysis. The code demonstrates excellent adherence to secure coding practices, with no dangerous functions identified, all SQL queries utilizing prepared statements, and all output properly escaped. The absence of file operations and external HTTP requests further reduces potential attack vectors. The plugin also has a clean vulnerability history, with no recorded CVEs, indicating a history of secure development or timely patching.

However, there are a few areas that, while not immediately critical, warrant attention. The presence of shortcodes as entry points, combined with a complete absence of nonce checks and capability checks, represents a potential risk. If these shortcodes handle any dynamic data or perform actions, they could be susceptible to cross-site request forgery (CSRF) attacks or unauthorized execution if not properly secured within their implementation. The lack of taint analysis data also means that the absence of vulnerabilities in this area is assumed rather than verified.

In conclusion, the plugin is well-developed from a core security perspective, with no obvious vulnerabilities in its use of SQL or output handling. The primary concern lies in the potential for unauthenticated or improperly authenticated shortcode execution. While no vulnerabilities are currently known, the lack of explicit security checks on these entry points is a weakness that could be exploited if the shortcode logic is not inherently secure.

Key Concerns

  • No nonce checks on entry points
  • No capability checks on entry points
  • Shortcodes without explicit auth checks
Vulnerabilities
None known

Iron gForce Lite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Iron gForce Lite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
12 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped12 total outputs
Attack Surface

Iron gForce Lite Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[irongforce_light] dependencies\shortcodes.php:35
[irongforce_light] trunk\dependencies\shortcodes.php:35
WordPress Hooks 6
actionadmin_menudependencies\settings-fields.php:16
actionadmin_initdependencies\settings-fields.php:22
actionadmin_headirongforcelite.php:25
actionadmin_menutrunk\dependencies\settings-fields.php:16
actionadmin_inittrunk\dependencies\settings-fields.php:22
actionadmin_headtrunk\irongforcelite.php:25
Maintenance & Trust

Iron gForce Lite Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJun 15, 2024
PHP min version
Downloads656

Community Trust

Rating100/100
Number of ratings3
Active installs10
Developer Profile

Iron gForce Lite Developer Profile

Ironistic

1 plugin · 10 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Iron gForce Lite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/iron-gforce-lite/admin/images/dashicon.png
Version Parameters
iron-gforce-lite/style.css?ver=iron-gforce-lite/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
dashicons-irongforce
Shortcode Output
<div id="grnhse_app"></div><script src="https://boards.greenhouse.io/embed/job_board/js?for=<p style="color: red; text-align: center;">Please add the "job_board" attribute to the [irongforce_light] shortcode or set it in the Iron gForce settings page.</p>
FAQ

Frequently Asked Questions about Iron gForce Lite